Linux kernel是美国Linux基金会开源的一款操作系统内核。 Linux kernel 6.3版本存在安全漏洞,该漏洞源于qcom_geni串口驱动中存在kfifo下溢问题,当uart_flush_buffer()在DMA完成IRQ之前运行时,可能导致竞争条件,进而造成kfifo_len()返回错误值,使后续DMA传输提交过期缓冲数据。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 2aaa43c7077833301c237684cd7bc9ae5e3dec95< c91ea13375f70f6271a0183445e34e83b8f4d8f7 |
affected |
2aaa43c7077833301c237684cd7bc9ae5e3dec95< b1159dce10b38eb795e4c96cdc4d34b83cec81c5 |
affected | ||
2aaa43c7077833301c237684cd7bc9ae5e3dec95< 654f45a8569f3cd6ff20bd724a18e0cce65893ba |
affected | ||
2aaa43c7077833301c237684cd7bc9ae5e3dec95< 0d2c41a8b00934ddf8a7c1b4cf72dffa1e629c46 |
affected | ||
2aaa43c7077833301c237684cd7bc9ae5e3dec95< 452d6fa37ae9b021f4f6d397dbae077f7296f6f4 |
affected | ||
6.3 |
affected | ||
< 6.3 |
unaffected | ||
6.6.143≤ 6.6.* |
unaffected | ||
| … +4 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-63795 | 10.0 CRITICAL | 9p: avoid putting oldfid in p9_client_walk() error path |
| CVE-2026-64016 | 9.8 CRITICAL | ksmbd: fix durable reconnect error path file lifetime |
| CVE-2026-63984 | 9.8 CRITICAL | ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() |
| CVE-2026-64033 | 9.8 CRITICAL | RDMA/rtrs: Fix use-after-free in path file creation cleanup |
| CVE-2026-63979 | 9.8 CRITICAL | net/handshake: hand off the pinned file reference to accept_doit |
| CVE-2026-64056 | 9.8 CRITICAL | net: ethernet: cortina: Make RX SKB per-port |
| CVE-2026-63800 | 9.8 CRITICAL | pNFS: Fix use-after-free in pnfs_update_layout() |
| CVE-2026-63978 | 9.8 CRITICAL | net/handshake: Drain pending requests at net namespace exit |
| CVE-2026-64055 | 9.8 CRITICAL | net: ethernet: cortina: Carry over frag counter |
| CVE-2026-63808 | 9.8 CRITICAL | exfat: fix potential use-after-free in exfat_find_dir_entry() |
| CVE-2026-64035 | 9.8 CRITICAL | igc: set tx buffer type for SMD frames |
| CVE-2026-63888 | 9.8 CRITICAL | scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() |
| CVE-2026-64091 | 9.8 CRITICAL | batman-adv: tt: fix TOCTOU race for reported vlans |
| CVE-2026-63887 | 9.8 CRITICAL | scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf |
| CVE-2026-64113 | 9.8 CRITICAL | ixgbevf: fix use-after-free in VEPA multicast source pruning |
| CVE-2026-63825 | 9.8 CRITICAL | gcov: use atomic counter updates to fix concurrent access crashes |
| CVE-2026-64125 | 9.8 CRITICAL | net: bcmgenet: keep RBUF EEE/PM disabled |
| CVE-2026-64160 | 9.8 CRITICAL | netfs: Fix potential for tearing in ->remote_i_size and ->zero_point |
| CVE-2026-64089 | 9.8 CRITICAL | batman-adv: tt: fix negative last_changeset_len |
| CVE-2026-63857 | 9.8 CRITICAL | net: airoha: Do not read uninitialized fragment address in airoha_dev_xmit() |
Showing top 20 of 429 CVEs. View all on vendor page → →
No comments yet